Exploit code is now available for one of the four previously undisclosed Windows vulnerabilities that the Stuxnet worm exploits. The Windows Task Scheduler bug is designed for use against systems running Windows Vista, Windows 7 or Windows Server 2008. There is currently no patch available for the bug, which is only used for privilege escalation once an attacker has already compromised a machine. Microsoft has not released a patch for the flaw as yet, but has patched three other bugs used by the worm earlier this year.
Source: https://threatpost.com/exploit-code-stuxnet-windows-task-scheduler-bug-posted-112310/74702/

